Input validation vulnerability in DirectoryPress – Business Directory And Classified Ad Listing 3.6.10

The DirectoryPress plugin for WordPress has a security flaw that could make it easy for hackers to access sensitive information. This vulnerability is present in versions 3.6.10 and below. It is caused by the plugin not properly protecting against a type of cyber attack called SQL Injection. This means that attackers with a certain level of access can add malicious code to existing database queries, allowing them to steal important data.

Detected in:

DirectoryPress – Business Directory And Classified Ad Listing fixed vulnerable versions: >= * <= 3.6.10

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.